Yoroi-Cybaze conducted a study, downloading files of 3 categories: most of them contain malware. In January there was a double cyber attack with Vidar and GandCrab.
Yoroi-Cybaze cyber security experts: The threat actor realized a complex implant leveraging an ecosystem of libraries to conduct his cyber warfare operation.
Check Point cyber security experts: There are gaps in management of inputs within the "unacev2.dll" library. Yoroi: If not necessary, block the ACE archives.
Yoroi-Cybaze cyber security experts: cybercrime and state-sponsored hackers use simple social engineering tricks to lure users to enable the malicious Macros.